Cybersecurity News
Stay informed about the latest cybersecurity incidents, vulnerabilities, and threat landscape changes. We cover data breaches, ransomware campaigns, critical CVEs, and regulatory updates – with context on what it means for you and how to protect yourself.
Fortinet FortiGate Firewalls Under Massive Attack via FortiCloud SSO Vulnerability CVE-2025-59718
From mid-January, Fortinet FortiGate firewalls have come under a new wave of highly automated attacks. According to researchers at Arctic ...
Google Gemini Prompt Injection via Google Calendar Exposes New AI Security Risk
Researchers from Miggo Security have demonstrated a novel prompt injection technique against the Google Gemini AI assistant that abuses standard ...
LastPass Phishing Emails Demand 24‑Hour Backup: How to Protect Your Password Manager
Users of the popular password manager LastPass are being targeted in a new phishing campaign that impersonates official maintenance notifications. ...
GhostPoster Malicious Browser Extensions Abuse Steganography in Chrome, Firefox and Edge
A large-scale malicious browser extension campaign known as GhostPoster has been uncovered in the official extension stores for Google Chrome, ...
Android.Phantom: New Android Trojan Uses WebRTC and TensorFlowJS for Large-Scale Click Fraud
A new malware family dubbed Android.Phantom has been identified targeting Android devices through popular mobile games and pirated “premium” app ...
CrashFix: NexShield Chrome Extension Crashes Browsers to Deploy ModeloRAT
Security researchers at Huntress have documented a new browser-based attack chain dubbed CrashFix, which weaponizes a malicious Chrome extension named ...
TP-Link VIGI Cameras Hit by Critical CVE-2026-0629 Vulnerability: What Organizations Need to Know
Professional video surveillance cameras from TP-Link, specifically the VIGI C and VIGI InSight series, have received a critical security update ...
VoidLink: AI-Built Linux Malware Framework Raises the Stakes for Cloud Security
Security researchers at Check Point have disclosed technical details of VoidLink, a new Linux malware framework that, according to their ...
Android’s Accountability Layer: How Google Is Changing Sideloading Security
Google is preparing a major shift in how Android handles the installation of apps from outside Google Play. A new ...
ShadowRelay Modular Backdoor Targets Government Networks via Microsoft Exchange ProxyShell
Researchers from the Solar 4RAYS team have identified a previously unknown modular backdoor dubbed ShadowRelay inside the infrastructure of a ...